Is 3Dconnexion extension for Google Chrome safe?

Low risk

3Dconnexion extension for Google Chrome opens an unauthenticated local WebSocket that reveals bookmarks and opens URLs on command.

On startup the extension opens a WebSocket connection to 127.51.68.120:41732 with no authentication token, certificate, or handshake check, trusting whichever local program is listening on that address. A connected program can send a command that makes the extension read the entire Chrome bookmarks tree (all folders and URLs) and send it back over the socket, or send a command that opens a URL supplied by that program in a new tab. The extension reconnects automatically every 500ms if the connection drops, so this channel stays open for as long as the browser is running.

Part of this rating comes from analysis signals we haven't published as detailed findings yet.

3Dconnexionv0.3.3Chrome Web Store
15Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

What it can do

Permissions this extension asks for, as declared in version 0.3.3. Asking for a permission is not a finding on its own - it is what the extension can do if it chooses to.

  • Read and change your bookmarks

    bookmarks

Where it sends data

Destinations our analysis observed 3Dconnexion contacting. Sending data somewhere is not a finding on its own - an extension that syncs your settings has to talk to its own server - but it is where your data can go, and who else it goes to.

  • 127.51.68.120:41732 (local process, unauthenticated)

    3Dconnexion sends data to 127.51.68.120:41732 (local process, unauthenticated). Named as a recipient in this extension's own analysis.

Updated 21 September 2026aoclejgjkallknknpdaadeeecnajhmhl